create.go 4.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167
  1. package user
  2. import (
  3. "context"
  4. "fmt"
  5. "net/http"
  6. "github.com/porter-dev/porter/internal/telemetry"
  7. "github.com/porter-dev/porter/api/server/authn"
  8. "github.com/porter-dev/porter/api/server/handlers"
  9. "github.com/porter-dev/porter/api/server/shared"
  10. "github.com/porter-dev/porter/api/server/shared/apierrors"
  11. "github.com/porter-dev/porter/api/server/shared/config"
  12. "github.com/porter-dev/porter/api/types"
  13. "github.com/porter-dev/porter/internal/analytics"
  14. "github.com/porter-dev/porter/internal/models"
  15. "github.com/porter-dev/porter/internal/repository"
  16. "golang.org/x/crypto/bcrypt"
  17. )
  18. type UserCreateHandler struct {
  19. handlers.PorterHandlerReadWriter
  20. }
  21. func NewUserCreateHandler(
  22. config *config.Config,
  23. decoderValidator shared.RequestDecoderValidator,
  24. writer shared.ResultWriter,
  25. ) *UserCreateHandler {
  26. return &UserCreateHandler{
  27. PorterHandlerReadWriter: handlers.NewDefaultPorterHandler(config, decoderValidator, writer),
  28. }
  29. }
  30. func (u *UserCreateHandler) ServeHTTP(w http.ResponseWriter, r *http.Request) {
  31. tracer, _ := telemetry.InitTracer(context.Background(), u.Config().TelemetryConfig)
  32. defer tracer.Shutdown()
  33. // just for demonstration purposes
  34. _, span := telemetry.NewSpan(context.Background(), "create-new-user")
  35. defer span.End()
  36. telemetry.WithAttributes(span, telemetry.AttributeKV{Key: "hello-world", Value: "hello, world!"})
  37. request := &types.CreateUserRequest{}
  38. ok := u.DecodeAndValidate(w, r, request)
  39. if !ok {
  40. return
  41. }
  42. user := &models.User{
  43. Email: request.Email,
  44. Password: request.Password,
  45. FirstName: request.FirstName,
  46. LastName: request.LastName,
  47. CompanyName: request.CompanyName,
  48. }
  49. // check if user exists
  50. doesExist := doesUserExist(u.Repo().User(), user)
  51. if doesExist {
  52. err := fmt.Errorf("email already taken")
  53. u.HandleAPIError(w, r, apierrors.NewErrPassThroughToClient(err, http.StatusBadRequest))
  54. return
  55. }
  56. if err := checkUserRestrictions(u.Config().ServerConf, request.Email); err != nil {
  57. u.HandleAPIError(w, r, apierrors.NewErrPassThroughToClient(err, http.StatusBadRequest))
  58. return
  59. }
  60. // hash the password using bcrypt
  61. hashedPw, err := bcrypt.GenerateFromPassword([]byte(user.Password), 8)
  62. if err != nil {
  63. u.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  64. return
  65. }
  66. user.Password = string(hashedPw)
  67. // write the user to the db
  68. user, err = u.Repo().User().CreateUser(user)
  69. if err != nil {
  70. u.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  71. return
  72. }
  73. err = addUserToDefaultProject(u.Config(), user)
  74. if err != nil {
  75. u.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  76. return
  77. }
  78. // save the user as authenticated in the session
  79. redirect, err := authn.SaveUserAuthenticated(w, r, u.Config(), user)
  80. if err != nil {
  81. u.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  82. return
  83. }
  84. // non-fatal send email verification
  85. if !user.EmailVerified {
  86. err = startEmailVerification(u.Config(), w, r, user)
  87. if err != nil {
  88. u.HandleAPIErrorNoWrite(w, r, apierrors.NewErrInternal(err))
  89. }
  90. }
  91. u.Config().AnalyticsClient.Identify(analytics.CreateSegmentIdentifyUser(user))
  92. u.Config().AnalyticsClient.Track(analytics.UserCreateTrack(&analytics.UserCreateTrackOpts{
  93. UserScopedTrackOpts: analytics.GetUserScopedTrackOpts(user.ID),
  94. Email: user.Email,
  95. FirstName: user.FirstName,
  96. LastName: user.LastName,
  97. CompanyName: user.CompanyName,
  98. }))
  99. if redirect != "" {
  100. http.Redirect(w, r, redirect, http.StatusFound)
  101. return
  102. }
  103. u.WriteResult(w, r, user.ToUserType())
  104. }
  105. func doesUserExist(userRepo repository.UserRepository, user *models.User) bool {
  106. user, err := userRepo.ReadUserByEmail(user.Email)
  107. return user != nil && err == nil
  108. }
  109. // addUserToDefaultProject adds the created user to any default projects if required by
  110. // config variables.
  111. func addUserToDefaultProject(config *config.Config, user *models.User) error {
  112. if config.ServerConf.InitInCluster {
  113. // if this is the first user, add the user to the default project
  114. if user.ID == 1 {
  115. // read the default project
  116. project, err := config.Repo.Project().ReadProject(1)
  117. if err != nil {
  118. return err
  119. }
  120. // create a new Role with the user as the admin
  121. _, err = config.Repo.Project().CreateProjectRole(project, &models.Role{
  122. Role: types.Role{
  123. UserID: user.ID,
  124. ProjectID: project.ID,
  125. Kind: types.RoleAdmin,
  126. },
  127. })
  128. if err != nil {
  129. return err
  130. }
  131. }
  132. }
  133. return nil
  134. }